Alpine Linux is a security-oriented, lightweight Linux distribution based on musl libc and busybox.
Public Key
npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz
Profile Code
nprofile1qqsz6zsr3reql0gywwktjjc3v24ancrtfdfqvhhckfxapxvesh93dvgpz4mhxue69uhhyetvv9ujumt0wd68ytnsw43qtuuwzg
Author Public Key
npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Show more details
Published at
2023-09-21T22:03:52+02:00 Event JSON
{
"id": "ee1338a4d8682d57189808ecd0639362b8a61769971cefa5c1c913b6c46bbf9d" ,
"pubkey": "2d0a0388f20fbd0473acb94b1162abd9e06b4b52065ef8b24dd0999985cb16b1" ,
"created_at": 1695326632 ,
"kind": 0 ,
"tags": [
[
"emoji",
"alpine",
"https://cdn.fosstodon.org/custom_emojis/images/000/218/777/original/82d920d583221b7e.png"
],
[
"proxy",
"https://fosstodon.org/users/alpinelinux",
"activitypub"
]
],
"content": "{\"name\":\"Alpine Linux :alpine:\",\"about\":\"Alpine Linux is a security-oriented, lightweight Linux distribution based on musl libc and busybox.\",\"picture\":\"https://cdn.fosstodon.org/accounts/avatars/109/393/135/857/799/187/original/06de99feb868ed0a.png\",\"banner\":\"https://cdn.fosstodon.org/accounts/headers/109/393/135/857/799/187/original/793b4771d3ad5eff.png\",\"nip05\":\"[email protected] \"}" ,
"sig": "c9a1c5b0505ec397a19177dedb9732a89ab56d6f675f9f4f7a99b80d64ac371008c5c63fefee098578d00433f51e22e8b5cb37460f397dea1fa90fca5da8ba12"
}
Last Notes npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: @npub1tt0…t9u7 There is no js on the front-page 🙂 npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: @npub1tt0…t9u7 https://alpinelinux.org/atom.xml. It's linked on the front-page, but apparently some meta-data for it is missing. npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: We are pleased to announce the release of Alpine Linux 3.20.1. This release includes various bug fixes and security updates, including security fixes for: OpenSSL - CVE-2024-4741 busybox - CVE-2023-42364 - CVE-2023-42365 See: https://alpinelinux.org/posts/Alpine-3.20.1-released.html #AlpineLinux npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: We are pleased to announce the release of Alpine Linux 3.20.0, the first in the v3.20 stable series. This is the first stable release that includes Risc-V 64 support thanks to Milk-V. Upgrades includes among others: - Rust 1.78 - Python 3.12 - KDE 6 https://www.alpinelinux.org/posts/Alpine-3.20.0-released.html Thanks to all the contributors who worked hard on getting this release out! #AlpineLinux npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: The x86_64 3.20 builder finished building community today (after some blockers were fixed / wirked around). Only riscv64 is left. The first rc is imminent. Please test the packages you care about so that issues can be fixed. #alpine #alpinelinux npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: ☕ https://cdn.fosstodon.org/media_attachments/files/112/196/700/360/683/610/original/8e532f053a62d82f.png npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: @npub1uxm…7v9v ☕ https://cdn.fosstodon.org/media_attachments/files/112/196/697/007/766/527/original/59f289024348ac95.png npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: Another reason Alpine is not affected: if test -f "$srcdir/debian/rules" || test "x$RPM_ARCH" = "xx86_64";then npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: Alpine Linux is not affected by CVE-2024-3094 (backdoor in upstream xz/liblzma leading to ssh server compromise). npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: @npub1zj5…0y9l You can manually remove the fwsetup call from grub.cfg to fix it. npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: Update on the grub situation on Alpine Linux: https://gitlab.alpinelinux.org/alpine/aports/-/merge_requests/60910 has landed, which removes the problematic part of the configuration that resulted in grub crashing / restarting. npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: @npub143l…q9zn Still manual intervention. The problem is that it's not simple to fix for us in a way that works for everyone and does not break your setup anyway. npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: Thanks to the heroic effort of omni and celeste, rust 1.76 landed today in #alpine after being stuck on 1.72 for quite some time. https://gitlab.alpinelinux.org/alpine/aports/-/commits/master/main/rust/APKBUILD npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: Alpine 3.19.1 released. This release includes various bug fixes and security updates, including security fixes for OpenSSL: - CVE-2023-6129 - CVE-2023-6237 - CVE-2024-0727 https://www.alpinelinux.org/posts/Alpine-3.19.1-released.html #AlpineLinux npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: @npub10gv…g2aw For now it will still require manual intervention. We are looking for a way to automate it, but we need to be very careful not to break existing setups, so not sure we will have a solution. npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: Our understanding is now that this only affects EFI systems due to a new module called bli being added and referenced by the configuration, but not present on the boot partition. npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: @npub1jdz…tryl For BIOS systems, yes. EFI systems use grub by default. npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: See https://wiki.alpinelinux.org/wiki/Release_Notes_for_Alpine_3.20.0 for some details (this is in preparation for 3.20, but counts for edge as well). npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: When running #AlpineLinux edge, beware when upgrading an existing system to grub 2.12, without manual steps, your machine might not boot. Make sure you run `grub-install` with the relevant options for your install (depending whether you use EFI or BIOS) and `update-grub` afterwards. npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: Tracking issue for #AlpineLinux https://gitlab.alpinelinux.org/alpine/aports/-/issues/15593 npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: Alpine Linux 3.19.0 Released We are pleased to announce the release of Alpine Linux 3.19.0, the first in the v3.19 stable series. Most notably it comes with Linux 6.6 as the new LTS kernel. For other changes, see: https://alpinelinux.org/posts/Alpine-3.19.0-released.html #AlpineLinux npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: Alpine Linux 3.15.11, 3.16.8, 3.17.6 and 3.18.5 have been released. They included openssl fixes for: - CVE-2023-5678 - CVE-2023-5363 https://alpinelinux.org/posts/Alpine-3.15.11-3.16.8-3.17.6-3.18.5-released.html #AlpineLinux npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: All builders have completed building the packages for main and community for Alpine 3.19. Thanks everyone involved with helping fixing any build issues. v3.19.0_rc1 has been released. Please test and report any issues on https://gitlab.alpinelinux.org/alpine/aports/-/issues npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: We are pleased to announce the release of Alpine Linux 3.18.4, a maintenance release of the 3.18 series. This release includes various bug fixes and security updates. See: https://www.alpinelinux.org/posts/Alpine-3.18.4-released.html for the full release notes. #AlpineLinux npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: Alpine 3.15.10, 3.16.7, 3.17.5 and 3.18.3 released. It contains fixes for openssl related CVEs: - CVE-2023-2975 - CVE-2023-3446 - CVE-2023-3817 See: https://alpinelinux.org/posts/Alpine-3.15.10-3.16.7-3.17.5-3.18.3-released.html #Alpine #AlpineLinux #cve #openssl npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: The Alpine Linux ARM builders and CI servers have been unavailable for a while. We now have builders again for edge and v3.18. More details on https://gitlab.alpinelinux.org/alpine/infra/infra/-/issues/10800/ npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: @npub148v…mww6 do you recall what error you got from the installer on Alpine Linux? npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: @npub1swg…rezs I was thinking about implementing something like that, Indeed. npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: @npub1swg…rezs One thing we're missing at moment is the moment where we switch between considering builders missing a transient issue and needing to escalate further. npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: @npub1swg…rezs The problem is that we cannot really do anything about this issue ourselves, we can only wait until it's fixed. I've created this issue now: https://gitlab.alpinelinux.org/alpine/infra/infra/-/issues/10800/. https://gitlab.alpinelinux.org/alpine/infra/infra is the place to report infrastructure issues. npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: @npub1swg…rezs We do monitor these servers and get alerted about issues, which reports on the #alpine-infra irc channel on irc.oftc.net. The current issues are mostly bad-luck / timing, but we are working on getting a more stable solution (the issues are network related). npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: The Alpine Linux 3.18 AWS images are now available as well: https://www.alpinelinux.org/cloud/ npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: @npub1at7…ca7v it missed an important upgrade to a package, making it broken, so 3.18.2 was quickly released soon after 😉 npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: @npub1ktm…fnsg We don't have anything resembling a forum at the moment, so either mailing lists, gitlab or IRC would be ways to get in contact with the community. npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: We're happy to announce the release of Alpine 3.15.9, 3.16.6, 3.17.4 and 3.18.2. These releases include the fixes for 2 openssl CVEs: - CVE-2023-1255 - CVE-2023-2650 https://alpinelinux.org/posts/Alpine-3.15.9-3.16.6-3.17.4-3.18.2-released.html #AlpineLinux npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: @npub1swg…rezs This issue was out of our power, so we had to wait until the network issues were resolved. We are working on ways to make our build infrastructure more flexible so that we're less dependent on a single builder, but getting sufficient build hardware (or even VMs) for arches other than x86_64 is still a challenge. npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: The Alpine Linux ARM (aarch64) builders have been unreachable. This means we have been unable to update packages like openssl and make new releases. We hope the servers are available again this week. npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: Alpine Linux 3.18 has been released. - Linux 6.1, the new LTS kernel - Kernel modules are now signed (but not yet enforced) - musl 1.2.4 includes DNS over TCP support - DT_RELR, resulting in smaller binaries See https://www.alpinelinux.org/posts/Alpine-3.18.0-released.html for more information. Thanks to everyone who contributed. #AlpineLinux npub1959q8z8jp77sguavh993zc4tm8sxkj6jqe003vjd6zvenpwtz6cs742tmz Alpine Linux :alpine: Alpine Linux 3.17.3, 3.16.5, 3.15.8, and 3.14.10 released Those releases include security fixes for openssl: CVE-2023-0464 CVE-2023-0465 https://www.alpinelinux.org/posts/Alpine-3.17.3-released.html https://www.alpinelinux.org/posts/Alpine-3.14.10-3.15.8-3.16.5-released.html #[0]